plan-capacitor-hardening

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to process external, untrusted project configuration files including capacitor.config.*, AndroidManifest.xml, and Info.plist. These files represent an attack surface where a malicious user or file could embed instructions designed to manipulate the agent's findings or bypass its logic.\n
  • Ingestion points: The agent is directed to inventory and read specific local configuration and manifest files from the mobile project.\n
  • Boundary markers: There are no explicit instructions to use delimiters or to ignore instructions embedded within the data being analyzed.\n
  • Capability inventory: The skill enables the agent to read local file system data and generate a security hardening plan based on the results.\n
  • Sanitization: The skill does not specify any sanitization or validation logic to handle potentially malicious content within the analyzed files.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 05:56 AM
Security Audit — agent-trust-hub — plan-capacitor-hardening